cve/2020/CVE-2020-9002.md
2024-05-25 21:48:12 +02:00

741 B

CVE-2020-9002

Description

An issue was discovered in iPortalis iCS 7.1.13.0. An attacker can gain privileges by intercepting a request and changing UserRoleKey=COMPANY_ADMIN to UserRoleKey=DOMAIN_ADMIN (to achieve Domain Administrator access).

POC

Reference

Github

No PoCs found on GitHub currently.